Good Day I am not sure if I would agree that you NEED to use the Mgt port at all. If you configure your interface as it is... Configure 1/11 with 192.168.0.2/28 You can get DHCP from 1/11, but also, you can manage the FW using the 1/11 interface IP. You would configure an Interface Mgmt Profile to allow things like ping, https, snmp, etc. This makes your configuration so much easier than what you are attempting. 😛 Will this work... just a single interface for DHCP and managing the FW? That is one hurdle.... there are more to come. There are about 20 mgmt services (PANW-DB, Panorama, LDAP, Radius, Dynamic Updates, etc., that are expected to be on the mgt. You can research Service Routes in the admin guide to change them to use either 1/11 vs mgmt.
... View more